Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

They do now, but they didn't in the past.


Any idea why this was changed? The big advantage of non-residential keys is that they do not take up any space on the Fido token and thus you can have an unlimited number of them.


They wanted discoverable credentials to enable the magic username-less "sign in with passkey" auth flow.


I really couldn't care less about that. But I do care about the limited space on my fido token.


I've used five RK slots out of 25 available on my daily driver keys. Three of those are for SSO providers that provide access to the majority of the other apps I use. I opt in to "sign in with Google" etc wherever I can.

I don't see this impacting me personally anytime soon, but that might change when more sites start insisting on rolling their own RKs.

Hopefully future Yubikey models will ship with more flash, enabling many more RKs if you so desire.




Consider applying for YC's Summer 2026 batch! Applications are open till May 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: